
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 172
ScenarioTwo:
Segmentsinvolved:Outsideworld,Public_Services(realaddress192.168.8.0/publishedaddress192.168.7.0)
Remarks: Apartfromscanning,weperformstresstestingagainstthewebservicesbehindthefirewalltoseeif:
n thefirewallwillbreakduetothehighload
n thefirewallcanprotectthewebserverfromthiskindofattack
Wedonot,however,intendtomeasurethefirewallperformanceindepth.
*AuditPositioning:Althoughthistestinvolvesconnectingfromthe“outside”,arrangementshouldbemadesothattheinternetconnectioncan
beperformedinhouse,probablyusingadialupISPconnection.Thisminimizesthechanceofhavingthetestbeingmonitoredbyathirdparty,
Attacker
Target
Hostsat
192.168.8.0
FW1_B2C
Scenario Two:Attackertryingtotamperwiththepublicserviceservers.
Kommentare zu diesen Handbüchern